1+ <?xml version =" 1.0" encoding =" UTF-8" standalone =" no" ?><samlp : Response xmlns : samlp =" urn:oasis:names:tc:SAML:2.0:protocol" xmlns : saml =" urn:oasis:names:tc:SAML:2.0:assertion" Destination =" https://acs.example.com/" ID =" _aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa" InResponseTo =" inResponseTo" IssueInstant =" 2000-01-01T01:00:00Z" Version =" 2.0" ><ds : Signature xmlns : ds =" http://www.w3.org/2000/09/xmldsig#" >
2+ <ds : SignedInfo >
3+ <ds : CanonicalizationMethod Algorithm =" http://www.w3.org/2001/10/xml-exc-c14n#" />
4+ <ds : SignatureMethod Algorithm =" http://www.w3.org/2007/05/xmldsig-more#sha256-rsa-MGF1" />
5+ <ds : Reference URI =" " >
6+ <ds : Transforms >
7+ <ds : Transform Algorithm =" http://www.w3.org/2000/09/xmldsig#enveloped-signature" />
8+ <ds : Transform Algorithm =" http://www.w3.org/2001/10/xml-exc-c14n#" />
9+ </ds : Transforms >
10+ <ds : DigestMethod Algorithm =" http://www.w3.org/2001/04/xmlenc#sha256" />
11+ <ds : DigestValue >bA/90zzLS/36DstvPJRrMNwGax5WQv8NneSuNdLnMYs=</ds : DigestValue >
12+ </ds : Reference >
13+ </ds : SignedInfo >
14+ <ds : SignatureValue >
15+ 0fK5rJEtj0+JIL3hAuDsEAuKYoiwHzZTgQgspLyEe+XQan1FzT+qu3GBJSpSDfArBHjHXtizVfi8
16+ irId6a1kOj6ShEw2ZSGYD8Dh2d0HmrHqlOqpZ5eLiWeFA6VTtW1Cqmvr+x4Ndxcg0wWmmGr4hpSD
17+ Yg8fkA8e32Fd2QxqLsQqVlCcuvJVCJ/12XSGcMW+Tse254fN6JENLLUdilu+14NNQKAHpKpjeajg
18+ jG3fn0VNvyVQXKi2deYTWYaLRujBgv3Ncz8t9Hjthk+XxrRVHJiGc6HyVvqdpi5ChM41fjB1+eBo
19+ NkZ0Q73ZSCbTAqVduUWqL5pQzINq16kUm2ovkg7h3JoqSQr5yhoBJXZEf6FEyYdCCLd3rlIrkcvD
20+ +wfF2CwNRc6utgO/05JAA7Z1x2e0K6o2a6EQy93dkUIBhpxPYU/IdmGb15AfKJ3OrB1K/jTrxZ2q
21+ og/u0fJe0vU1sL4EDOXqVMj/unTZqDP/K1mOHK/eDWafs/IwMv65ebZUwTk74AMk/oOYV9mL8beY
22+ JAVYMN+xPA1cXnHlRgwATWLXjfiQcMXo44nhaw0YlOUGIoRLYURqHmXz0W3d8pXYdybLmdClkqLR
23+ vo1ryK1OC2paYG9qwk51QJ5wzMv6HRB5tDIL9/7mP7khlKgm4p+EZXFGYmvYDbk2x219SvxPmfY=
24+ </ds : SignatureValue >
25+ <ds : KeyInfo >
26+ <ds : KeyValue >
27+ <ds : RSAKeyValue >
28+ <ds : Modulus >
29+ 16YEqKYde+lUD8PuHvdVAC+o9E2y/2iNwJo+tk1PdSjpOMYoMvvMRUnlNiAuuFu2m3xavtuSvtcm
30+ yZjAaveFCsimm+8nl5np9sSfT0+W6+E8J7G3gWa84l0kfLkxOtA3Vi2WCRAURILveiXhFi8z/9B3
31+ 5xZZ7huZF5W+q6cu5e9t2Hg71PZb7JukY+OpuUfI+Aknpypi7B0iIZjT+fUrBKSdeg/kXynKyqsT
32+ 8aerf6AhCl46ZjnhqF/Vk+VfVDMaxhYGNmC2m/bSwiCuPIuq4F6R1J2zKtl8gE+fG0hv04n/fYaI
33+ kNqL87FVK1XgmuP7lIP6a/sNW2ZyAZekfFlT01cIJmDfvFsNu2i4jZLAp+9Le+F2S6/cZ2J25499
34+ uAImafWePLwxApuNU3PlfXqhjTv+WC4GaqBk8uBJdwDHDRd5ZHnGdlGSjCN+NaSNbx8kRtIwq9mW
35+ Kct9KWECnfmewL2SjFEyRUHwSDp981zekgPJVmSzzluFU3Tn3Bo0Io9wFA3k3opVIoKUYJE5fe1l
36+ Kxn2rLy1zK3UaF2MYxj3vrOPrX/oJyoU1UOoesHviEmhVTnl6QqzlMGTNDnYpELSmIB9BvTqySsQ
37+ 2Q5eGJJGBaqocsORLpvR2cDFPOt9ZZAUqjEYM/AF+ynQZ9T6xkusDqfhgtvC9SEnkcUa4lrWnl0=
38+ </ds : Modulus >
39+ <ds : Exponent >AQAB</ds : Exponent >
40+ </ds : RSAKeyValue >
41+ </ds : KeyValue >
42+ <ds : X509Data >
43+ <ds : X509Certificate >
44+ MIIFFzCCAv+gAwIBAgIUaAU88KUbZLe7NwTw+jdCHIDU6wIwDQYJKoZIhvcNAQELBQAwGjEYMBYG
45+ A1UEAwwPaWRwLmV4YW1wbGUuY29tMCAXDTI1MDkwODExMTUzMFoYDzIxMjUwODE1MTExNTMwWjAa
46+ MRgwFgYDVQQDDA9pZHAuZXhhbXBsZS5jb20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoIC
47+ AQDXpgSoph176VQPw+4e91UAL6j0TbL/aI3Amj62TU91KOk4xigy+8xFSeU2IC64W7abfFq+25K+
48+ 1ybJmMBq94UKyKab7yeXmen2xJ9PT5br4TwnsbeBZrziXSR8uTE60DdWLZYJEBREgu96JeEWLzP/
49+ 0HfnFlnuG5kXlb6rpy7l723YeDvU9lvsm6Rj46m5R8j4CSenKmLsHSIhmNP59SsEpJ16D+RfKcrK
50+ qxPxp6t/oCEKXjpmOeGoX9WT5V9UMxrGFgY2YLab9tLCIK48i6rgXpHUnbMq2XyAT58bSG/Tif99
51+ hoiQ2ovzsVUrVeCa4/uUg/pr+w1bZnIBl6R8WVPTVwgmYN+8Ww27aLiNksCn70t74XZLr9xnYnbn
52+ j324AiZp9Z48vDECm41Tc+V9eqGNO/5YLgZqoGTy4El3AMcNF3lkecZ2UZKMI341pI1vHyRG0jCr
53+ 2ZYpy30pYQKd+Z7AvZKMUTJFQfBIOn3zXN6SA8lWZLPOW4VTdOfcGjQij3AUDeTeilUigpRgkTl9
54+ 7WUrGfasvLXMrdRoXYxjGPe+s4+tf+gnKhTVQ6h6we+ISaFVOeXpCrOUwZM0OdikQtKYgH0G9OrJ
55+ KxDZDl4YkkYFqqhyw5Eum9HZwMU8631lkBSqMRgz8AX7KdBn1PrGS6wOp+GC28L1ISeRxRriWtae
56+ XQIDAQABo1MwUTAdBgNVHQ4EFgQULRbUCREu3zQABqNW8LMOfraF5BMwHwYDVR0jBBgwFoAULRbU
57+ CREu3zQABqNW8LMOfraF5BMwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAgEAA6Jm
58+ 3pll7XHBY/oXrtRAu60RpH4pcZBSf68zhCQKUnXALy2FWrUGU8uVCJJuxXIcxszTOCZmwVF12Yce
59+ IFpBrWHxKCDZWYDO6hrwZvsa2vh5mXDZo3c/HX6GmJR4f4oIIZnbxFhXR30419PlrwMW3Rk7rnVS
60+ Dz/HpQfdS4y8jYgsm2dIRo+PXQytFRCDj4afsT3eZa27QjFxLTuK+SwkhupSH1WWYmqL9+iIJiLL
61+ /ntfM4MwtOUwcfqI0ttbvFZZIPneBCuEDLn/zJ/QBV3ZvjQDt53W21HaPGPHBBfVZVroZPvuGvul
62+ WRLeECI1Hmbl3al/2aOC0LWzPIk8dlTcN+EWcCEufpTOEgkob8waEyxlX0Z5OBjkCHpyDTPGkxBB
63+ OCJv88Frx7qdbu8eSV0OviuaM/B7ky2NbDMKIybX4tf/Q8FNfjPLvTv+8nbrMz6kTno3RR2YC7tt
64+ I7Glb/eOg3F/ouF4wcoPAj+OyU5Q5WJMMaZ9cXF9pwszsglLbFms+WD5PFxlloh6I1hO7TccWKTe
65+ UJ5fYZSYYm31JqWit3DBltXTyRyL7KFSdT/FyRBk62YLCJqJmcukIUJUTya73/RmjW1M4zMBNaIj
66+ /pH77opKWnVbm9F4XnBCG4r9+FRXdV2zKW6DgvDzQ6DaZ+0cwC36vSqkDyjZYv/tviuWfM8=
67+ </ds : X509Certificate >
68+ </ds : X509Data >
69+ </ds : KeyInfo >
70+ </ds : Signature >
71+ <saml : Issuer >https://idp.example.com/</saml : Issuer >
72+ <samlp : Status >
73+ <samlp : StatusCode Value =" urn:oasis:names:tc:SAML:2.0:status:Success" />
74+ </samlp : Status >
75+ <saml : Assertion xmlns : xs =" http://www.w3.org/2001/XMLSchema" xmlns : xsi =" http://www.w3.org/2001/XMLSchema-instance" ID =" _bbbbbbbbbbbbbbbbbbbbbbbb" IssueInstant =" 2000-01-01T01:00:00Z" Version =" 2.0" >
76+ <saml : Issuer >https://idp.example.com/</saml : Issuer >
77+ <saml : Subject >
78+ <saml : NameID Format =" urn:oasis:names:tc:SAML:2.0:nameid-format:transient" SPNameQualifier =" audience" >modifiedFakeNameId</saml : NameID >
79+ <saml : SubjectConfirmation Method =" urn:oasis:names:tc:SAML:2.0:cm:bearer" >
80+ <saml : SubjectConfirmationData InResponseTo =" inResponseTo" NotOnOrAfter =" 3000-01-01T01:00:00Z" Recipient =" https://acs.example.com/" />
81+ </saml : SubjectConfirmation >
82+ </saml : Subject >
83+ <saml : Conditions NotBefore =" 2000-01-01T01:00:00Z" NotOnOrAfter =" 3000-01-01T01:00:00Z" >
84+ <saml : AudienceRestriction >
85+ <saml : Audience >audience</saml : Audience >
86+ </saml : AudienceRestriction >
87+ </saml : Conditions >
88+ <saml : AuthnStatement AuthnInstant =" 2000-01-01T01:00:00Z" SessionIndex =" 42" SessionNotOnOrAfter =" 3000-01-01T01:00:00Z" >
89+ <saml : AuthnContext >
90+ <saml : AuthnContextClassRef >urn:oasis:names:tc:SAML:2.0:ac:classes:Password</saml : AuthnContextClassRef >
91+ </saml : AuthnContext >
92+ </saml : AuthnStatement >
93+ </saml : Assertion >
94+ </samlp : Response >
0 commit comments